07-01-2008 9:19 PM
A client has requested that we configure the password/logon rules so that all passwords are exactly 8 characters in length.
I am aware of the profile parameter for minimum password length, however I am not aware of any parameter to change the maximum password length from the system default to 8 characters. I am curious if anyone has encountered a similar requirement and how they were able to accomplish. Any suggestions are greatly appreciated. Thank you.
07-01-2008 9:29 PM
I am only aware that you can limit the minimum length, restrict the password wizard to generate only 8 character long initial passwords, and use 8 character passwords from older systems when logging on to newer ones which require compatability with them. If that is your question, then that is possible.
After that, it is up to the user to use a password of their choice after the minimum requirements are set...
As far as I know, the only way of doing this "afterwards" is to revert back to the old method, but then you loose other cool security features.
Cheers,
Julius
07-01-2008 9:29 PM
I am only aware that you can limit the minimum length, restrict the password wizard to generate only 8 character long initial passwords, and use 8 character passwords from older systems when logging on to newer ones which require compatability with them. If that is your question, then that is possible.
After that, it is up to the user to use a password of their choice after the minimum requirements are set...
As far as I know, the only way of doing this "afterwards" is to revert back to the old method, but then you loose other cool security features.
Cheers,
Julius
07-01-2008 10:49 PM
Hi Julius,
Thank you for your reply. Is the customizing switch, GEN_PSW_MAX_LENGTH, only applied to passwords generated with the wizard? I was hoping there was a solution I could apply without having to change the profile parameter for downwards compatibility and lose any of the other new features. It is looking more and more like this is not possible. I appreciate your feedback. Thanks.
Regards,
Teresa Lansberry
07-01-2008 11:06 PM
Yes, that is the switch for the wizard in table PRGN_CUST.
You can still use the downward compatability to permit both. (see the docs in RZ11)
You can also force the compatability to the new features for password based integration, if you train your "upward" system admins to set 8 character upper case passwords of length 8 only.
If you are using the "current user" scenario, then you need to train the user.
Cheers,
Julius
07-01-2008 11:57 PM
07-02-2008 12:06 AM
You are welcome.
If I think of or hear of something else, then I will update the thread.
As far as I know, the above are your options.
Cheers,
Julius
PS: Setting password requirements which cannot be fullfilled by the wizard customizing anyway, is not advisable.
09-26-2008 2:11 AM
Which option do you use to set the password wizard to generate only 8 characters?